Round auditor

Audit round 2

One page, every check: the committed CSV bytes, the on-chain commitment payload, the future-block rule, and a full local replay of the weighted draw. Watch your own browser try to falsify the round.

Verdict

Round 2: Pending

Every check below runs against public evidence — the published CSV bytes, the Bitcoin chain, and the protocol's fixed draw parameters. The CSV hash is computed by your own browser, and the draw replay runs inline in this page's JavaScript as a demonstration. To remove this page from the trust path, reimplement the byte-level rules in the technical specification and compare your result with the evidence shown here.

Checks

Public evidence checks

CSV bytes match the committed hashPending

Your browser downloads the final CSV and hashes the exact bytes with SHA-256.

Commitment transactionPending

The first outbound transaction from the round commitment address carries the committed payload.

Draw block is commitment height + 2Pending

The draw block must be the pre-specified future block, not a chosen one.

Minor seed matches committed hashPending

The raw minor seed is revealed after the draw block exists.

Draw replay

Replay the elimination draw in your browser

The replay advances one sequential SHA-256 chain by 200,000hashes per elimination — the protocol's fixed hash count — so it takes as long for you as it did for Luckotto.

Remaining tiles
Recorded tiles
Replay reproduces the recorded tiles and winnerPending

Run the replay to recompute the eliminations, final draw tiles, and winner from the committed CSV, minor seed, draw block hash, and hash count.

Payout

Recorded payout